CVE-2026-81897 | Concrete CMS up to 9.5.2 Express save_control cross site scripting

SecurityVulns

A vulnerability was found in Concrete CMS up to 9.5.2 and classified as problematic. This impacts the function save_control of the component Express. Executing a manipulation can lead to cross site scripting.

This vulnerability is registered as CVE-2026-81897. It is possible to launch the attack remotely. No exploit is available.VulDB Recent EntriesRead More